CVE-2012-0444
Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize nsChildView data structures, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted Ogg Vorbis file.
- Mozilla Firefox
- < 3.6.26, 10.0
- Mozilla Seamonkey
- < 2.7
- Mozilla Thunderbird
- < 3.1.18, 10.0
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 7.9% (94th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2012-02-01
CVE-2012-0444 at NVD
No indexed exploits for CVE-2012-0444 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2012-0444 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.